CVE-2019-12977 PUBLISHED

ImageMagick 7.0.8-34 has a "use of uninitialized value" vulnerability in the WriteJP2Image function in coders/jp2.c.

EPSS 0.30% · 53.0th percentile

Risk Scores

EPSS Score
0.30%
53.0th percentile

Affected Products

VendorProductVersions
Ubuntu:18.04:LTSimagemagick0, 8:6.9.7.4+dfsg-16ubuntu2, 8:6.9.7.4+dfsg-16ubuntu3
Ubuntu:20.04:LTSimagemagick0, 8:6.9.10.23+dfsg-2.1ubuntu3, 8:6.9.10.23+dfsg-2.1ubuntu8
Ubuntu:16.04:LTSimagemagick8:6.8.9.9-7ubuntu5.4, 8:6.8.9.9-7ubuntu5.5, 8:6.8.9.9-7ubuntu5.6

Timeline

References

Open in Interactive Console →